Race condition in Linux kernel - CVE-2026-31456
Published: April 24, 2026
Linux kernel
Detailed vulnerability description
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to a race condition in walk_pmd_range() when walking page tables during concurrent PUD splitting and refault handling. A local user can trigger concurrent memory-management operations to cause a denial of service.
An example scenario involves reading numa_maps of a process while VFIO-PCI is setting up DMA on a large BAR for that process.